Opened 6 years ago

Closed 6 years ago

Last modified 6 years ago

#14090 closed enhancement (fixed)

ruby-272

Reported by: Bruce Dubbs Owned by: Bruce Dubbs
Priority: high Milestone: 10.1
Component: BOOK Version: SVN
Severity: medium Keywords:
Cc:

Description

New point version.

Change History (4)

comment:1 by Bruce Dubbs, 6 years ago

Owner: changed from blfs-book to Bruce Dubbs
Status: new → assigned

comment:2 by Bruce Dubbs, 6 years ago

Ruby 2.7.2 has been released.

This release contains intentional incompatibility. Deprecation warnings are off by default on 2.7.2 and later. You can turn on deprecation warnings by specifying the -w or -W:deprecated option at the command-line. Please check the topics below for details.

  • Feature #17000 2.7.2 turns off deprecation warnings by default
  • Feature #16345 Don’t emit deprecation warnings by default.

This release contains the new version of webrick with a security fix described in the article.

CVE-2020-25613: Potential HTTP Request Smuggling Vulnerability in WEBrick

comment:3 by Bruce Dubbs, 6 years ago

Resolution: → fixed
Status: assigned → closed

Fixed at revision 23789.

comment:4 by Douglas R. Reno, 6 years ago

Priority: normal → high

Mark high for CVE-2020-25613

Note: See TracTickets for help on using tickets.